Cloud Security Engineer

    Cloud Security Engineer

    At Schuberg Philis we take 100% responsibility for mission-critical digital services. As Cloud Security Engineer you sit inside a self-managing customer team and make security a lived engineering practice—not a gate. You protect platforms our customers cannot afford to fail, while raising maturity across cloud, applications, and operations.

    Performance Objectives

    • Embed agreed security baselines, controls, and threat models into design, IaC, and day-to-day run so customer environments stay continuously aligned.
    • Drive measurable security-maturity improvements (findings closed, control coverage, audit readiness) across a full customer landscape within the first year.
    • Lead audit, compliance, and regulatory activities; translate evidence into clear risk language for engineers and senior stakeholders.
    • Act as trusted advisor on cloud security architecture (AWS/Azure, Kubernetes, identity, network) and convert risk into practical engineering work.
    • Coordinate security incident response and vulnerability handling as escalation point, restoring trust without siloing ownership.
    • Facilitate security discussions that help T-shaped engineers own risk and treat security as shared responsibility, not a specialist queue.

    Environment & Resources

    You join a dedicated, multidisciplinary, self-managing customer team in the Netherlands (Rotterdam hub). You work with Tech Leads, Security Leads, auditors, and customer stakeholders. High trust, no billable-hour theater: quality and long-term outcomes. Training, conferences, labs, and a strong engineering community. Report into the customer team; influence across security specialists. Full-time 32–40 hours. We can only consider people who already live and work in the Netherlands; no visa sponsorship.

    Essential Qualifications

    • Several years in cloud/platform/security engineering with enough depth to challenge engineers on real technical risk.
    • Proven ability to turn security and compliance requirements into working controls in cloud-native stacks (AWS or Azure, IaC, CI/CD).
    • Experience with security architecture, threat modeling, governance, audits, and regulated or mission-critical environments.
    • Strong stakeholder skills: equally credible with engineers and business owners on risk appetite and priorities.
    • Ownership mindset, English fluency, comfort in autonomous teams that run Plan–Build–Run end to end.

    Role Selling Points

    • Security is a core value proposition, not a control function bolted on after delivery.
    • Operate between strategy and keyboards: influence architecture and still ship outcomes.
    • Impact on some of the Netherlands’ most critical digital services, with real end-to-end ownership.
    • Natural path toward broader security leadership while staying close to technology.

    If you want to secure what must never go down—and grow as a T-shaped security engineer among people who own the result—apply. We hire for equal treatment and diverse backgrounds. We would like to hear from you.